osm icon indicating copy to clipboard operation
osm copied to clipboard

Create MVP for manual root certificate rotation

Open ksubrmnn opened this issue 2 years ago • 0 comments

Please describe the Improvement and/or Feature Request

Create a process by which OSM users can manually rotate the root certificate without any downtime. This issue only focuses on creating an MVP and not covering all possible edge cases.

For more details, please review the Simplified Proposal for Manual Root Cert Rotation MVP Scope (please mark with X where applicable)

  • New Functionality [X]
  • Install [ ]
  • SMI Traffic Access Policy [ ]
  • SMI Traffic Specs Policy [ ]
  • SMI Traffic Split Policy [ ]
  • Permissive Traffic Policy [ ]
  • Ingress [ ]
  • Egress [ ]
  • Envoy Control Plane [ ]
  • CLI Tool [ ]
  • Metrics [ ]
  • Certificate Management [ ]
  • Sidecar Injection [ ]
  • Logging [ ]
  • Debugging [ ]
  • Tests [ ]
  • CI System [ ]
  • Demo [ ]
  • Project Release [ ]

Possible use cases

Allow users to rotate root certificates without down time. This can be done using the MRC Intent field and a level triggered approach.

ksubrmnn avatar Oct 12 '22 19:10 ksubrmnn